]> git.ipfire.org Git - thirdparty/systemd.git/blobdiff - man/resolved.conf.xml
resolved,networkd: add a per-interface DNSSEC setting
[thirdparty/systemd.git] / man / resolved.conf.xml
index c2c277b606ce04add614e1a92a1e081de866f6d5..3209f73bc14a9298a3c25d932733e0ea4d8aed6f 100644 (file)
         happen regularly. On other systems it is recommended to set
         <varname>DNSSEC=</varname> to
         <literal>allow-downgrade</literal>.</para>
+
+        <para>In addition to this global DNSSEC setting
+        <citerefentry><refentrytitle>systemd-networkd.service</refentrytitle><manvolnum>8</manvolnum></citerefentry>
+        also maintains per-interface DNSSEC settings. For system DNS
+        servers (see above), only the global DNSSEC setting is in
+        effect. For per-interface DNS servers the per-interface
+        setting is in effect, unless it is unset in which case the
+        global setting is used instead.</para>
+
+        <para>Defaults to off.</para>
         </listitem>
       </varlistentry>